2024 CVE Vulnerabilities
39,218 CVEs published in 2024.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2024-11663 | CRITICAL | 9.8 | 0.9% | Nov 25, 2024 | A vulnerability classified as critical was found in Codezips E-Commerce Site 1.0. Affected by this vulnerability is an u... |
| CVE-2024-11661 | CRITICAL | 9.8 | 0.8% | Nov 25, 2024 | A vulnerability was found in Codezips Free Exam Hall Seating Management System 1.0. It has been declared as problematic.... |
| CVE-2024-11649 | CRITICAL | 9.8 | 0.8% | Nov 25, 2024 | A vulnerability has been found in 1000 Projects Beauty Parlour Management System 1.0 and classified as critical. This vu... |
| CVE-2024-11648 | CRITICAL | 9.8 | 0.8% | Nov 25, 2024 | A vulnerability, which was classified as critical, was found in 1000 Projects Beauty Parlour Management System 1.0. This... |
| CVE-2024-11647 | CRITICAL | 9.8 | 0.8% | Nov 25, 2024 | A vulnerability, which was classified as critical, has been found in 1000 Projects Beauty Parlour Management System 1.0.... |
| CVE-2024-11646 | CRITICAL | 9.8 | 0.8% | Nov 25, 2024 | A vulnerability classified as critical was found in 1000 Projects Beauty Parlour Management System 1.0. Affected by this... |
| CVE-2024-11666 | CRITICAL | 9.8 | 0.4% | Nov 24, 2024 | Affected devices beacon to eCharge cloud infrastructure asking if there are any command they should run. This communicat... |
| CVE-2024-53915 | CRITICAL | 9.8 | 0.9% | Nov 24, 2024 | An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24405. It allows remote attackers... |
| CVE-2024-53914 | CRITICAL | 9.8 | 0.9% | Nov 24, 2024 | An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24344. It allows remote attackers... |
| CVE-2024-53913 | CRITICAL | 9.8 | 0.9% | Nov 24, 2024 | An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24343. It allows remote attackers... |
| CVE-2024-53912 | CRITICAL | 9.8 | 0.9% | Nov 24, 2024 | An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24341. It allows remote attackers... |
| CVE-2024-53911 | CRITICAL | 9.8 | 0.9% | Nov 24, 2024 | An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24339. It allows remote attackers... |
| CVE-2024-53910 | CRITICAL | 9.8 | 0.9% | Nov 24, 2024 | An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24336. It allows remote attackers... |
| CVE-2024-53909 | CRITICAL | 9.8 | 0.9% | Nov 24, 2024 | An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24334. It allows remote attackers... |
| CVE-2024-11236 | CRITICAL | 9.8 | 2.1% | Nov 24, 2024 | In PHP versions 8.1.* before 8.1.31, 8.2.* before 8.2.26, 8.3.* before 8.3.14, uncontrolled long string inputs to ldap_e... |
| CVE-2024-11632 | CRITICAL | 9.8 | 0.8% | Nov 23, 2024 | A vulnerability was found in code-projects Simple Car Rental System 1.0. It has been classified as critical. Affected is... |
| CVE-2024-11631 | CRITICAL | 9.8 | 0.7% | Nov 23, 2024 | A vulnerability was found in itsourcecode Tailoring Management System 1.0 and classified as critical. This issue affects... |
| CVE-2024-9942 | CRITICAL | 9.8 | 1.1% | Nov 23, 2024 | The WPGYM - Wordpress Gym Management System plugin for WordPress is vulnerable to arbitrary file uploads due to missing ... |
| CVE-2024-9659 | CRITICAL | 9.8 | 1.6% | Nov 23, 2024 | The School Management System for Wordpress plugin for WordPress is vulnerable to arbitrary file uploads due to missing f... |
| CVE-2024-9511 | CRITICAL | 9.8 | 1.1% | Nov 23, 2024 | The FluentSMTP – WP SMTP Plugin with Amazon SES, SendGrid, MailGun, Postmark, Google and Any SMTP Provider plugin for Wo... |
| CVE-2024-10961 | CRITICAL | 9.8 | 1.2% | Nov 23, 2024 | The Social Login plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 5.9.0... |
| CVE-2024-0138 | CRITICAL | 9.8 | 0.9% | Nov 23, 2024 | NVIDIA Base Command Manager contains a missing authentication vulnerability in the CMDaemon component. A successful expl... |
| CVE-2024-52034 | CRITICAL | 10 | 1.7% | Nov 22, 2024 | An OS Command Injection vulnerability exists within myPRO Manager. A parameter within a command can be exploited by an u... |
| CVE-2024-47407 | CRITICAL | 10 | 65.6% | Nov 22, 2024 | A parameter within a command does not properly validate input within myPRO Manager which could be exploited by an unauth... |
| CVE-2024-47138 | CRITICAL | 9.8 | 0.8% | Nov 22, 2024 | The administrative interface listens by default on all interfaces on a TCP port and does not require authentication when... |
Check if your code is affected by 2024 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now